@csrf
tweet about social engineering

22.05.2023 news Social Engineering! How Social Media Comments Can Empty Your Bank Account

Published 22nd May, 2023

By Abimbola Abatta

Nothing delights scammers more than a trail of your personal information on different social media platforms.

Social media users often drop their personal details while engaging posts on Twitter, Facebook and other platforms. These actions, though innocent, tend to leave a digital footprint. And to scammers, these footprints are like a treasure chest.

At the weekend, @ayodeji_og shared a post asking tweeps to reveal the names of their mothers in a thread. This request did not sit well with many Nigerians who understand social engineering.

READ ALSO: ALERT: Scammers Targeting Nigerians With False Illness, Job Stories

SOCIAL ENGINEERING

@WolePhoenix, one of the tweeps who commented on the post, noted that all the information other tweeps might have dropped could be used to launch a malicious attack through social engineering.

Tweet warning social media users of social engineering

FIJ’s findings showed that social engineering refers to every technique aimed at making someone reveal specific information or perform a specific action for illegitimate reasons.

It uses psychological manipulation to trick users into making security mistakes or giving away sensitive information.

READ ALSO: ALERT: Phishers Targeting YouTube Account Owners

Abdulrahman Tunde, a cyber security researcher, who commented on the post, vividly illustrated how sharing one’s details online could be unwise and risky.

“Those engaging this tweet, I have a message for you. Previously, you have dropped your [date of birth], you have dropped your account details under giveaway, you have dropped your location of birth under a different engagement,” said Tunde.

“You have also dropped your phone number to win data giveaway. Then ‘Mr. Charles from your bank’ will call you tomorrow. He will tell you your name, your DOB, your mother’s name, then tell you your ATM is having issues.”

Another tweet warning users of social engineering

“Then you will call your ATM number, and [he will] ask you to send OTP. By tomorrow, you will start dragging ‘your bank’ that you were wrongly debited. A more deadly scenario is using these same details you are giving out willingly as your PIN, password and security questions.”

WHY SHOULD YOU TAKE CAUTION?

Questions such as ‘What is your mother’s maiden name?’ are known as security questions.

Apart from mother’s maiden name, security questions can come in the form of address, date of birth, name of the street you grew up on, the name of your first pet, the name of your high school, the city where you grew up, your childhood nickname and the model of your first car.

According to Okta, an American identity and access management company, these questions are used to authenticate one’s identity. They typically serve as an extra layer of security.

What does the above imply? In Nigeria, many websites, as well as mobile and web apps, utilise security questions. Also, financial institutions, cable companies and wireless providers use security questions.

Banks, for instance, require customers to answer security questions when they want to reset their pins or passwords, change their transaction PIN and manage beneficiaries, among other functions.

In an era where online scam is rife with no permanent solution in sight, one can imagine the dangers associated with voluntarily giving out personal information in the name of social media engagement.

When such questions are asked on social media, they might appear harmless. However, one must think twice before answering them because fraudsters may be lurking in the comments waiting to pounce on their next victim.

Leave a Reply

Your email address will not be published. Required fields are marked *


Published 22nd May, 2023

By Abimbola Abatta

Advertisement

Our Stories

Breaking news

BREAKING: CBN Raises Capital Base for Big Banks to N500b

Nigerian Army

Why Declaring 8 People Wanted for Okuama Massacre Puts Nigerian Army in Contempt of Court

KFC

4 Times PWDs Accused KFC of Discrimination in Different Countries

FIJ Longlisted for One World Media Award — The 3rd Time in a Row

Okuama Resident Who Said Slain Soldiers Were Not for Peacekeeping on Army’s Wanted List

Month-Long Power Outage Forces UCH Doctors to Perform Surgeries With Phone Lights

Army Names 8 People Wanted for Okuama Massacre

LP Reserves 2027 Presidential Ticket for Obi

‘For His Disability, KFC Humiliates Ex-Governor Gbenga Daniel’s Son at Lagos Airport’

Jail

Lagos Resident Sentenced to Life Imprisonment for Sexually Assaulting 5-Year-Old

Advertisement